Cisco Security and ThreatQuotient

How ThreatQuotient and Cisco Security work together

ThreatQuotient’s ThreatQ platform has integrations with several Cisco products to ensure the right information gets to the right solutions to help protect critical assets. 

ThreatQuotient's ThreatQ strengthens security postures with an open and extensible platform designed to enable threat operations and management and arm analysts with the intelligence, controls and automation required to protect business, employees and customers.

Product Integrations

  • SecureX threat response: ThreatQuotient periodically posts Judgements and Verdicts of observables to Cisco Threat Intelligence API, for visualization in threat response. In addition, ThreatQ uses Cisco SecureX threat response as an enrichment source for threat intelligence.
  • Secure Firewall: ThreatQ can normalize threat intelligence from many sources and send that information to Firepower through its Threat Intelligence Director (TID) so that new and complex threats can be defended against quickly and automatically.
  • Secure Umbrella: With the combination of Cisco Umbrella, Umbrella Investigate, and the ThreatQ Threat Intelligence Platform, organizations can uncover current and emerging threats and stop phishing, malware and ransomware earlier.
  • Secure Malware Analytics: ThreatQuotient delivers an open and extensible threat intelligence platform (TIP) to provide defenders the context, customization, and collaboration needed for increased security effectiveness and efficient threat operations and management. ThreatQuotient integrates with Malware Analytics to provide a simple way for an analyst to check the posture of a file or URL from within the ThreatQ platform. The combined solution helps an analyst make an informed decision about events on the network and the potential risk related to malware identified by Malware Analytics. ThreatQuotient is integrated with Malware Analytics Premium Feeds.